1

Security Risk Management Jobs in Chicago, IL (NOW HIRING)

Risk Management Manager

Chicago, IL · On-site

$70K - $102K/yr

... security and actively participates in risk-related activities in this area. Provides assistance with claims investigation, management and litigation. Facilitates reporting of safety data/events.

Risk Management Manager

Chicago, IL · On-site

$70K - $102K/yr

... security and actively participates in risk-related activities in this area. Provides assistance with claims investigation, management and litigation. Facilitates reporting of safety data/events.

Director, Security

Chicago, IL · On-site

$149K - $206K/yr

Develop and implement an enterprise security risk management (ESRM) framework aligned with business priorities, including ongoing assessment of threats, vulnerabilities, and geopolitical risks.

The Information Security Officer will be a member of the Business Information Security Officer ... CSBB/GBM) * 1-2 years of risk management experience or direct participation in risk management ...

Showing results 21-40

Security Risk Management information

See Chicago, IL salary details

$10

$51

$72

How much do security risk management jobs pay per hour?

As of Sep 10, 2026, the average hourly pay for security risk management in Chicago, IL is $51.93, according to ZipRecruiter salary data. Most workers in this role earn between $42.12 and $61.92 per hour, depending on experience, location, and employer.

What is security risk management?

Security Risk Management is the process of identifying, assessing, and mitigating risks to an organization's information, assets, and operations. It involves evaluating potential threats and vulnerabilities, determining their potential impact, and implementing strategies to minimize or control these risks. The goal is to protect the organization from security breaches, data loss, and other threats while ensuring compliance with legal and regulatory requirements. Security Risk Management is essential for maintaining business continuity and safeguarding reputation.

What are the key skills and qualifications needed to thrive in security risk management, and why are they important?

To excel in Security Risk Management, you need a solid understanding of risk assessment frameworks, cybersecurity principles, and compliance standards, often supported by a degree in information security or related fields. Familiarity with risk management tools, security incident response systems, and certifications such as CISSP or CISM is typically required. Strong analytical thinking, communication, and decision-making skills help professionals navigate complex threats and collaborate across departments. These competencies are crucial for effectively identifying, mitigating, and communicating risks to protect organizational assets and ensure regulatory compliance.

What are the typical challenges faced by professionals in security risk management, and how can they be addressed?

Professionals in Security Risk Management often encounter challenges such as rapidly evolving threats, balancing security with business operations, and ensuring organization-wide compliance with regulations. Staying current with the latest risk trends and fostering cross-department collaboration are key strategies for overcoming these obstacles. Additionally, clear communication of risks to non-technical stakeholders and ongoing training are essential for building a proactive security culture and effective risk mitigation.

What is the difference between Security Risk Management vs Security Analyst?

AspectSecurity Risk ManagementSecurity Analyst
CertificationsCRISC, CISSP, CISMCompTIA Security+, CISSP, CEH
Work EnvironmentStrategic, policy-focused, risk assessmentOperational, monitoring, incident response
Employer & Industry UsageOrganizations managing enterprise security risksSecurity teams, cybersecurity firms, IT departments

Security Risk Management focuses on identifying, assessing, and mitigating security risks at an organizational level, often involving policy development and strategic planning. In contrast, Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. Both roles are essential but differ in scope and responsibilities within the cybersecurity field.

What do you need to be a security risk manager?

A security risk manager typically needs a bachelor's degree in security management, information technology, or a related field, along with experience in security or risk assessment. Certifications such as Certified Information Systems Security Professional (CISSP) or Certified Risk and Information Systems Control (CRISC) can enhance qualifications. Strong analytical skills, knowledge of security protocols, and familiarity with risk management tools are also important for the role.

What does security risk management do?

Security risk management involves identifying, assessing, and prioritizing potential security threats to an organization, then implementing measures to mitigate or eliminate those risks. Professionals in this field analyze vulnerabilities, develop security policies, and often use tools like risk assessment frameworks and security audits to protect assets and ensure safety.

What are popular job titles related to Security Risk Management jobs in Chicago, IL?

For Security Risk Management jobs in Chicago, IL, the most frequently searched job titles are:

What job categories do people searching Security Risk Management jobs in Chicago, IL look for?

The top searched job categories for Security Risk Management jobs in Chicago, IL are:

Infographic showing various Security Risk Management job openings in Chicago, IL as of August 2026, with employment types broken down into 1% As Needed, 79% Full Time, 17% Part Time, 2% Contract, and 1% Nights. Highlights an 82% Physical, 3% Hybrid, and 15% Remote job distribution, with an average salary of $108,094 per year, or $52 per hour.

Information Security Officer

Chicago, IL • On-site

Full-time

PTO

Posted 8 days ago


Job description

Job Description:

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates' physical, emotional, and financial wellness through affordable, competitive and flexible benefits.
We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve.
Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!

The Information Security Officer will be a member of the Business Information Security Officer's (BISO) organization and partners with the Global Business Services (GBS) Line of Business and Technology Leaders (GDLs). In this role, you will support a group/team in developing business insight for focused information security risk discussions. This relationship will ensure a focus on the right risk priorities. You will also provide guidance on information security topics, policies and controls.

Required Qualifications:
2-5 years of experience in technology and 5+ years in information security
2-5 years of experience in application development or application security
Experience working on cloud implementations in Microsoft Azure, Amazon Web Services and Google Cloud Platform environments
Must display subject matter experience in application security, vulnerability testing, system testing, and/or Agile lifecycle management
Strong LOB knowledge/experience for the type of business they are aligned to (e.g..CSBB/GBM)
1-2 years of risk management experience or direct participation in risk management processes, including application risk classification and application control assessments.
Experience giving presentations and superb communication skills

Desired Qualifications:
Bachelor's and/or Master's degree in Computer Science, Information Technology or related field

Scale/Scope
Contribute to the ongoing information security initiatives and improvements development, implementation and maintenance of information security for the line of business (LOB)
Possess strong / experienced application development and/or application security background; with solid knowledge of SDLC from design, testing, deployment to post-production and the different risk elements associated with each step.
Serves as an Information Security subject matter expert and participates in the development, implementation and maintenance of information security for the line of business (LOB)
Provides guidance and advocacy regarding the prioritization of LOB investments that impact information security
Advises LOB management on risk issues related to information security and recommends actions in support of the bank's wider risk management and compliance programs
Monitors information security trends internal and external to the bank and keeps LOB/CIO Partners informed about information security-related issues
Manages quality control and reporting
Ensures compliance with policies and laws

Risk Management
Drives GIS/LOB risk deliverables
Collaborates with risk partners on info security critical priorities
Participates in senior LOB specific Risk Management & Business Continuity Routines
Identifies and measures global information security (GIS) controls on most critical business processes or channels

Leadership/Strategy
Has a working knowledge of security for computing platforms (PaaS)
Has a solid grasp of security in big data and other instructed large data structures
Ability to build strong Partner relationships with peer technology groups and supported LOB
Supports the triage process with the client and helps them understand the GIS support structure
Drives required risk culture and partnership with peer technology teams and supported LOB
Participates in key CIO/COO operating routines to drive information security risk strategy

Required Skills:

1. Controls Management
2. Cyber Security
3. Data Governance
4. Information Systems Management
5. Risk Management
6. Architecture
7. Customer and Client Focus
8. Executive Presence
9. Threat Analysis
10. Vendor Management
11. Self- Starter
12. Emotional Intelligence

Shift:

1st shift (United States of America)

Hours Per Week:

40

Pay Transparency details

US - CO - Denver - 1144 15th St - Denver Gis (CO9926), US - DC - Washington - 1800 K St NW - 1800 K Street NW (DC1842), US - IL - Chicago - 540 W Madison St - Bank Of America Plaza (IL4540)Pay and benefits informationPay range$99,200.00 - $145,000.00 annualized salary, offers to be determined based on experience, education and skill set.Discretionary incentive eligibleThis role is eligible to participate in the annual discretionary plan. Employees are eligible for an annual discretionary award based on their overall individual performance results and behaviors, the performance and contributions of their line of business and/or group; and the overall success of the Company.BenefitsThis role is currently benefits eligible. We provide industry-leading benefits, access to paid time off, resources and support to our employees so they can make a genuine impact and contribute to the sustainable growth of our business and the communities we serve.